First published: Fri Jun 26 2020(Updated: )
ControlEdge PLC (R130.2, R140, R150, and R151) and RTU (R101, R110, R140, R150, and R151) exposes unencrypted passwords on the network.
Credit: ics-cert@hq.dhs.gov
Affected Software | Affected Version | How to fix |
---|---|---|
Honeywell Controledge Plc Firmware | =r130.2 | |
Honeywell Controledge Plc Firmware | =r140 | |
Honeywell Controledge Plc Firmware | =r150 | |
Honeywell Controledge Plc Firmware | =r151 | |
Honeywell ControlEdge PLC | ||
Honeywell Controledge Rtu Firmware | =r101 | |
Honeywell Controledge Rtu Firmware | =r110 | |
Honeywell Controledge Rtu Firmware | =r140 | |
Honeywell Controledge Rtu Firmware | =r150 | |
Honeywell Controledge Rtu Firmware | =r151 | |
Honeywell Controledge Rtu |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-10628 is a vulnerability that affects ControlEdge PLC (R130.2, R140, R150, and R151) and RTU (R101, R110, R140, R150, and R151) devices, which exposes unencrypted passwords on the network.
CVE-2020-10628 has a severity rating of 7.5 (High).
CVE-2020-10628 exposes unencrypted passwords on the network, potentially allowing unauthorized access to ControlEdge PLC devices.
CVE-2020-10628 exposes unencrypted passwords on the network, potentially allowing unauthorized access to RTU devices.
To fix CVE-2020-10628, it is recommended to update the firmware of ControlEdge PLC (R130.2, R140, R150, and R151) and RTU (R101, R110, R140, R150, and R151) devices to a version that addresses the vulnerability.